Skip to content

chore(ci): bump argus reusable-security-hardening to 1.12.5 - #306

Merged
eFAILution merged 1 commit into
betafrom
chore/argus-workflow-1.12.5
Sep 21, 2026
Merged

eFAILution merged 1 commit into
betafrom
chore/argus-workflow-1.12.5

Conversation

@eFAILution

Copy link
Copy Markdown
Owner

Rebuilds #301 against beta. That PR was opened against main, which is still on 1.12.3 while beta moved to 1.12.4 in #293, so retargeting it conflicted on the one line it changes.

Verification

  • SHA 6040db47e31f4db533967c3a5b70f4a208afead3 resolves to the 1.12.5 tag in huntridge-labs/argus.
  • Diff of the reusable workflow across 1.12.4..1.12.5 is only its own internal @1.12.4@1.12.5 job references. Nothing else in the file changed.
  • The release otherwise carries dependency bumps and fix(containers): re-pin clamav 1.5.4 digest after upstream re-push (argus#426).

Closes #301 once merged.

Rebuilds #301 against beta, which is already on 1.12.4 (#293) while main
is still on 1.12.3, so the one-line change conflicted on retarget.

SHA 6040db47 verified as the 1.12.5 tag in huntridge-labs/argus. The
reusable workflow's own diff across 1.12.4..1.12.5 is only its internal
@1.12.4 -> @1.12.5 job references; the release otherwise carries
dependency bumps and a clamav digest re-pin (argus#426).
@github-actions

Copy link
Copy Markdown
Contributor

🛡️ Security Hardening Pipeline Results

Branch: chore/argus-workflow-1.12.5
Commit: 952f4d1

Workflow Run: 458
Branch: chore/argus-workflow-1.12.5
Commit: 952f4d1

Scan Status

Scanner Status
bandit ⏭️ skipped
checkov ⏭️ skipped
clamav ⏭️ skipped
codeql ✅ PASS
container ⏭️ skipped
dependency-review ✅ PASS
gitleaks ✅ PASS
grype ⏭️ skipped
lint ⏭️ skipped
opengrep ⏭️ skipped
osv ✅ PASS
sbom ⏭️ skipped
supply-chain ⏭️ skipped
trivy-container ⏭️ skipped
trivy-iac ⏭️ skipped
zap ⏭️ skipped

✅ All enabled scanners completed successfully.

Summaries Collected: 4

Scanner Results

🔬 CodeQL SAST (Javascript)

Status: Completed

Findings Summary

Critical High Medium Low Total
0 0 0 0 0

No security findings detected for Javascript.

Artifacts: CodeQL Reports (Javascript)

🔗 Dependency Review

Status: ✅ No issues found

No vulnerable or license-violating dependencies detected in this PR.
📋 View full report

🔑 Gitleaks (Secrets)

No 🔑 Gitleaks (Secrets) findings summary was produced.

📦 OSV (Dependencies)

No 📦 OSV (Dependencies) findings summary was produced.


Generated by Argus


Generated by Argus

@eFAILution
eFAILution merged commit ae88710 into beta Sep 21, 2026
23 checks passed
@eFAILution
eFAILution deleted the chore/argus-workflow-1.12.5 branch September 21, 2026 18:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant